Cyber Security / SOC Analyst / Vulnerability Management Job at Med Tech Solutions

Med Tech Solutions Remote

Job Description

Job Title: Security Analyst II

Job Type: Full-time

Must be:

  • A US Citizen
  • Must be technical but also able to convey project requirements to both a technical and non-technical audience.
  • Available for on-call rotation.

About our Company

Med Tech Solutions (MTS) is a leading healthcare technology company focused on delivering innovative technology solutions that improve the ability to provide patient care and support our health care providers. Our mission is to deliver innovative technology solutions that empower our customers to deliver exceptional patient care. We work exclusively with healthcare organizations across the United States, providing comprehensive and cost-effective HIT and Cloud solutions.

MTS is headquartered in Valencia, California, with regional offices in St. Louis, Missouri, Minneapolis, Minnesota, Morristown, New Jersey, and Silverton, Oregon. Please visit (www.medtechsolutions.com) for more background information.

The Opportunity

MTS is currently seeking a Security Analyst to join their team! The Security Analyst is primarily responsible for Vulnerability Management, SIEM, EDR solution, detection, advanced troubleshooting, design recommendations, and overall security of services running on MTS’s own, internally managed cloud. You’ll be managing and responding to security notifications, optimizing rules, researching the unusual incidents, and engaging vendors and forensics as needed. On the proactive side you’ll be reviewing pen testing results, interpreting the results, and you’ll either fix them directly or create projects for technicians to resolve. At times you’ll support the compliance side by running reports and educating customer on how to read the reports.

Essential Duties and Responsibilities

  • Work hours are business hours continental US with rotating on-call
  • Review evaluate vulnerabilities, and make recommendations
  • Configuring, auditing, and documenting firewall, SIEM and EDR configurations
  • Coordinate directly with internal customers and service managers on design, lifecycle, and expansion of security offerings
  • Incident management, forensics support and outage recovery
  • Leverage automation to improve processes, automate deployment, and improve manageability of environment
  • Review entire environment and execute initiatives to reduce failures, defects and improving overall performance
  • Self-motivated and willingness to solve complex problems · Excellent written and verbal communication/listening skills
  • Adhere to write standard operating procedures (SOPs), Guides, Templates, and Policies used to support and manage MTS Operations daily activities

Qualifications

To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill, and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

  • Operational support for information security tool alerts, triaging, and maintenance
  • Execute on information security activities such as vulnerability management; application development security; business continuity; networking; risk management
  • Perform first level incidence response
  • Research security trends, new methods and techniques used to preemptively eliminate the possibility of system breach
  • Serve as Subject Matter Expert (SME) on information security related projects and initiatives assigned
  • Maintain confidentiality on all sensitive security matters, and EHR, ePHI related data
  • Familiar with virtualization, networks, backups and storage solutions
  • Familiarity with Bash, PowerShell, Python or other scripting languages
  • Familiar with Windows and Linux operating systems
  • Familiarity with network monitoring tools
  • Experience with CRM Ticketing Systems
  • Excellent oral and written communication skills; including documentation
  • Require limited supervision and direction; drive results and set priorities independently
  • Prior experience working with medical applications such as Allscripts, Epic, GE Centricity, or NextGen is a plus
  • Ability to handle sensitive information including Protected Health Information (ePHI)
  • Comply with HIPAA and Cybersecurity Frameworks

Education and/or Experience

  • 5 years prior experience
  • Must have at least 1 of GIAC, Sec+, CEH or GSOC
  • MSP/Consulting Experience
  • Vulnerability management and latest scanners
  • Incident Response / Leadership

Desired skills

  • Security Incident Response
  • SIEM and EDR tools, preferably Perch and SentinelOne
  • Vulnerability scanner such as Qualys
  • Scripting experince, preferably in PowerShell or Python
  • O365 or Azure Security Center

Language Skills English

Reasoning Ability Ability to solve practical problems and deal with a variety of concrete variables in situations where only limited standardization exists. Ability to interpret a variety of instructions furnished in written, oral, diagram, or schedule form.

Computer Skills Terminal Services, Routers or Firewalls Active Directory, Windows, MAC OS, Wireless Access Points and WLAN Controllers, VPN, SIEM, and EDR.

Benefits

Benefits include competitive base salary, PTO, paid holidays, training, various health plans to choose from, dental, vision, 401k with company match, FSA option, disability insurance, and paid life insurance.

Job Type: Full-time

Pay: $75,000.00 - $99,000.00 per year

Benefits:

  • 401(k)
  • 401(k) matching
  • Dental insurance
  • Flexible schedule
  • Flexible spending account
  • Health insurance
  • Health savings account
  • Life insurance
  • Paid time off
  • Vision insurance

Compensation package:

  • Bonus pay

Experience level:

  • 5 years

Schedule:

  • 8 hour shift
  • On call

COVID-19 considerations:
This is full time US remote position.

Application Question(s):

  • Are you available for on-call rotation and working extended hours when needed for an incident?

Experience:

  • Information security: 5 years (Required)
  • SOC Incident Response: 3 years (Required)
  • Day-to-Day Vulnerability management: 3 years (Required)

License/Certification:

  • GCIH, GSOC, or other incident/vulnerability certification (Required)

Work Location: Remote




Please Note :
blog.nvalabs.org is the go-to platform for job seekers looking for the best job postings from around the web. With a focus on quality, the platform guarantees that all job postings are from reliable sources and are up-to-date. It also offers a variety of tools to help users find the perfect job for them, such as searching by location and filtering by industry. Furthermore, blog.nvalabs.org provides helpful resources like resume tips and career advice to give job seekers an edge in their search. With its commitment to quality and user-friendliness, Site.com is the ideal place to find your next job.